Attack Graph Implementation in Graph Database

Gabriella Simon-Nagy, Rita Fleiner, Anna Bánáti · 2022

Security Operation Centers (SOC) are essential to identify and analyze cyberattacks and defend networks from security incidents. Graph representations are frequently used nowadays in order to correctly identify vulnerabilities and weaknesses in the system, as well as attack paths and potential methods of defense. This paper demonstrates a Labeled Property Graph data model based on STIX that makes efficient storage and querying of security-related objects possible, including a method for importing a sample STIX data set into Neo4j graph database.

Read the paper · More papers on PaperTik